SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-77654

MEDIUM · CVSS 6.1 EPSS 0.10%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A privilege escalation vulnerability exists in the Horizon Security Analyzer on 64-bit Linux systems, allowing local users with command line access to exploit approved sudo commands. By manipulating command parameters, an attacker can gain elevated privileges, potentially compromising system integrity. Organizations using affected versions (A33.10, A33.20, A33.30) should prioritize remediation to mitigate the risk of unauthorized access.

CVE
CVE-2026-77654
Severity
MEDIUM
CVSS
6.1
EPSS
0.10%
Linux

Original NVD Description

Improper Privilege Management vulnerability in Horizon Security Analyzer (formerly AlgoSec Firewall Analyzer) on Linux, 64 bit allows Privilege Escalation and Parameter Injection. A local user with access to the command line may escalate their privileges by abusing the parameters of a command that is approved in the sudoers file.  This issue affects Horizon Security Analyzer : A33.10, A33.20 and A33.30.